CVE-2024-12532 – Elementor Addons for WordPress Sensitive Information Exposure

CVE ID : CVE-2024-12532 Published : Jan. 7, 2025, 12:15 p.m. | 38 minutes ago Description : The BWD Elementor Addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.3.18 in widgets/bwdeb-content-switcher.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, […]

CVE-2024-12316 – Jupiter X Core WordPress Unauthenticated Data Export Vulnerability

CVE ID : CVE-2024-12316 Published : Jan. 7, 2025, 12:15 p.m. | 38 minutes ago Description : The Jupiter X Core plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_popup_action() function in all versions up to, and including, 4.8.5. This makes it possible for unauthenticated attackers […]

CVE-2024-11826 – Quill Forms Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2024-11826 Published : Jan. 7, 2025, 12:15 p.m. | 38 minutes ago Description : The Quill Forms | The Best Typeform Alternative | Create Conversational Multi Step Form, Survey, Quiz, Cost Estimation or Donation Form on WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘quillforms-popup’ shortcode in all […]

CISA says Treasury was the only US agency breached via BeyondTrust

CISA says Treasury was the only US agency breached via BeyondTrust The US Cybersecurity and Infrastructure Security Agency (CISA) has shared on Monday that the Treasury Department was the only US federal agency affected by the recent cybersecurity incident involving … Read more Published Date: Jan 07, 2025 (1 hour, 34 minutes ago) Vulnerabilities has been mentioned […]

Androidtelefoons met MediaTek-chip kwetsbaar voor aanval via malafide zendmast

Androidtelefoons met MediaTek-chip kwetsbaar voor aanval via malafide zendmast dinsdag 7 januari 2025, 12:23 door Redactie, 4 reactiesLaatst bijgewerkt: Vandaag, 14:27 Androidtelefoons bevatten meerdere kritieke kwetsbaarheden die remote code execution op de toestellen mogelijk … Read more Published Date: Jan 07, 2025 (4 hours, 50 minutes ago) Vulnerabilities has been mentioned in this article.

Androidtelefoons kwetsbaar voor aanval via malafide zendmast

Androidtelefoons kwetsbaar voor aanval via malafide zendmast dinsdag 7 januari 2025, 12:23 door Redactie, 4 reactiesLaatst bijgewerkt: Vandaag, 14:27 Androidtelefoons bevatten meerdere kritieke kwetsbaarheden die remote code execution op de toestellen mogelijk … Read more Published Date: Jan 07, 2025 (2 hours, 26 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2025-22364 – Service Shogun Ach Invoice App PHP Remote File Inclusion

The following table lists the changes that have been made to the CVE-2025-22364 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2025-22359 – PJFC SyncFields Cross-site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-22359 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2025-22358 – Marcon Simone Wp Advertising Management Cross-Site Scripting

The following table lists the changes that have been made to the CVE-2025-22358 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]

CVE-2025-22362 – Powerfusion WPAchievements Free Cross-site Scripting (Stored)

The following table lists the changes that have been made to the CVE-2025-22362 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]